← back
CVE-2022-36896

CVE-2022-36896

EPSS 0.6%
A missing permission check in Jenkins Compuware Source Code Download for Endevor, PDS, and ISPW Plugin 2.0.12 and earlier allows attackers with Overall/Read permission to enumerate hosts and ports of Compuware configurations and credentials IDs of credentials stored in Jenkins.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →